DevSecOps / Compliance Infrastructure Engineer

Cruitin Inc.
Orlando, FL, United States
9 days ago
Apply on www.juju.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Azure Cloud Computing Cloud Engineering CompTIA Security+ DevOps Federal Information Processing Standards (FIPS) Github Log Analysis Security Information and Event Management Data Logging Reliability of Systems Kubernetes
+5 more
Bicep Terraform Splunk Devsecops Docker

Job description

  • Develop and manage CI/CD pipelines (Azure DevOps or GitHub Actions)
  • Implement Infrastructure as Code (Terraform, Bicep, or ARM)
  • Support monitoring, logging, and incident response (Sentinel, Log Analytics)
  • Ensure systems meet security and compliance standards (FedRAMP, CMMC, NIST)

Requirements

  • 3-6 years in DevOps / Cloud Engineering
  • Strong hands-on experience with Microsoft Azure
  • Experience with containers (Docker, Kubernetes/AKS)
  • Proficiency in Infrastructure as Code (Terraform, Bicep, or ARM)
  • Experience building CI/CD pipelines
  • Exposure to security/compliance frameworks (FedRAMP, CMMC, NIST 800-53 or 800-171)
  • Solid understanding of cloud networking, security, and system reliability

Nice-to-Haves

  • Experience with Azure Government environments
  • Prior work supporting FedRAMP authorization or CMMC compliance
  • Familiarity with SIEM tools (Sentinel, Splunk, ELK)
  • Experience with compliance automation tools (Vanta, Drata, Wiz)
  • Knowledge of FIPS encryption standards
  • Relevant certifications (AZ-500, CISSP, CCSP, Security+, etc.)

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:53 min

Transitioning toward DevSecOps with dynamic scanning and secrets management

Christoph Ruggenthaler · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · World Congress 2025

2:56 min

Provisioning a secure container infrastructure with Bicep

Matthias Falkenberg +1 · World Congress 2022

4:29 min

Configuring a DevSecOps pipeline and Oversecured integration demo

Moataz Nabil Moataz Nabil · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all